{"id":"https://openalex.org/W2426902404","doi":"https://doi.org/10.1109/cybersec.2015.13","title":"Development of Intellectual Network Forensic System LIFT against Targeted Attacks","display_name":"Development of Intellectual Network Forensic System LIFT against Targeted Attacks","publication_year":2015,"publication_date":"2015-10-01","ids":{"openalex":"https://openalex.org/W2426902404","doi":"https://doi.org/10.1109/cybersec.2015.13","mag":"2426902404"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/cybersec.2015.13","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5085758599","display_name":"Kazuki Hashimoto","orcid":"https://orcid.org/0000-0002-8324-2202"},"institutions":[{"id":"https://openalex.org/I165522056","display_name":"Tokyo Denki University","ror":"https://ror.org/01pa62v70","country_code":"JP","type":"funder","lineage":["https://openalex.org/I165522056"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Kazuki Hashimoto","raw_affiliation_strings":["Tokyo Denki University, Tokyo, JAPAN"],"affiliations":[{"raw_affiliation_string":"Tokyo Denki University, Tokyo, JAPAN","institution_ids":["https://openalex.org/I165522056"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5011446309","display_name":"Hiroyuki Hiruma","orcid":null},"institutions":[{"id":"https://openalex.org/I165522056","display_name":"Tokyo Denki University","ror":"https://ror.org/01pa62v70","country_code":"JP","type":"funder","lineage":["https://openalex.org/I165522056"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Hiroyuki Hiruma","raw_affiliation_strings":["Tokyo Denki University, Tokyo, JAPAN"],"affiliations":[{"raw_affiliation_string":"Tokyo Denki University, Tokyo, JAPAN","institution_ids":["https://openalex.org/I165522056"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5068935524","display_name":"Takashi Matsumoto","orcid":"https://orcid.org/0000-0003-0105-0061"},"institutions":[{"id":"https://openalex.org/I165522056","display_name":"Tokyo Denki University","ror":"https://ror.org/01pa62v70","country_code":"JP","type":"funder","lineage":["https://openalex.org/I165522056"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Takashi Matsumoto","raw_affiliation_strings":["Tokyo Denki University, Tokyo, JAPAN"],"affiliations":[{"raw_affiliation_string":"Tokyo Denki University, Tokyo, JAPAN","institution_ids":["https://openalex.org/I165522056"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5012560397","display_name":"Kosetus Kayama","orcid":null},"institutions":[{"id":"https://openalex.org/I165522056","display_name":"Tokyo Denki University","ror":"https://ror.org/01pa62v70","country_code":"JP","type":"funder","lineage":["https://openalex.org/I165522056"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Kosetus Kayama","raw_affiliation_strings":["Tokyo Denki University, Tokyo, JAPAN"],"affiliations":[{"raw_affiliation_string":"Tokyo Denki University, Tokyo, JAPAN","institution_ids":["https://openalex.org/I165522056"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058324065","display_name":"Yoshio Kaikizaki","orcid":null},"institutions":[{"id":"https://openalex.org/I165522056","display_name":"Tokyo Denki University","ror":"https://ror.org/01pa62v70","country_code":"JP","type":"funder","lineage":["https://openalex.org/I165522056"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Yoshio Kaikizaki","raw_affiliation_strings":["Tokyo Denki University, Tokyo, JAPAN"],"affiliations":[{"raw_affiliation_string":"Tokyo Denki University, Tokyo, JAPAN","institution_ids":["https://openalex.org/I165522056"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5089004021","display_name":"Hiroshi Yamaki","orcid":null},"institutions":[{"id":"https://openalex.org/I165522056","display_name":"Tokyo Denki University","ror":"https://ror.org/01pa62v70","country_code":"JP","type":"funder","lineage":["https://openalex.org/I165522056"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Hiroshi Yamaki","raw_affiliation_strings":["Tokyo Denki University, Tokyo, JAPAN"],"affiliations":[{"raw_affiliation_string":"Tokyo Denki University, Tokyo, JAPAN","institution_ids":["https://openalex.org/I165522056"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5057986691","display_name":"Tetsutaro Uehara","orcid":"https://orcid.org/0000-0002-8233-130X"},"institutions":[{"id":"https://openalex.org/I165522056","display_name":"Tokyo Denki University","ror":"https://ror.org/01pa62v70","country_code":"JP","type":"funder","lineage":["https://openalex.org/I165522056"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Tetsutaro Uehara","raw_affiliation_strings":["Tokyo Denki University, Tokyo, JAPAN"],"affiliations":[{"raw_affiliation_string":"Tokyo Denki University, Tokyo, JAPAN","institution_ids":["https://openalex.org/I165522056"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101137905","display_name":"Ry\u00f4ichi Sasaki","orcid":null},"institutions":[{"id":"https://openalex.org/I165522056","display_name":"Tokyo Denki University","ror":"https://ror.org/01pa62v70","country_code":"JP","type":"funder","lineage":["https://openalex.org/I165522056"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Ryoichi Sasaki","raw_affiliation_strings":["Tokyo Denki University, Tokyo, JAPAN"],"affiliations":[{"raw_affiliation_string":"Tokyo Denki University, Tokyo, JAPAN","institution_ids":["https://openalex.org/I165522056"]}]}],"institution_assertions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"fulltext_origin":"ngrams","cited_by_count":0,"citation_normalized_percentile":{"value":0.0,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":0,"max":66},"biblio":{"volume":null,"issue":null,"first_page":"16","last_page":"21"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9779,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9779,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9643,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9415,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/lift","display_name":"Lift (data mining)","score":0.8166651}],"concepts":[{"id":"https://openalex.org/C139002025","wikidata":"https://www.wikidata.org/wiki/Q3001212","display_name":"Lift (data mining)","level":2,"score":0.8166651},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5656685},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5252573},{"id":"https://openalex.org/C2779662365","wikidata":"https://www.wikidata.org/wiki/Q5416694","display_name":"Event (particle physics)","level":2,"score":0.51263493},{"id":"https://openalex.org/C25343380","wikidata":"https://www.wikidata.org/wiki/Q277521","display_name":"Relation (database)","level":2,"score":0.5117426},{"id":"https://openalex.org/C58328972","wikidata":"https://www.wikidata.org/wiki/Q184609","display_name":"Expert system","level":2,"score":0.43179616},{"id":"https://openalex.org/C93996380","wikidata":"https://www.wikidata.org/wiki/Q44127","display_name":"Server","level":2,"score":0.41781121},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.34654152},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.20458126},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.1722916},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.12381318},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/cybersec.2015.13","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, justice, and strong institutions","score":0.66}],"grants":[],"datasets":[],"versions":[],"referenced_works_count":8,"referenced_works":["https://openalex.org/W1855593863","https://openalex.org/W2057036604","https://openalex.org/W2144906988","https://openalex.org/W2152183345","https://openalex.org/W2181808011","https://openalex.org/W2564765429","https://openalex.org/W3111818035","https://openalex.org/W4285719527"],"related_works":["https://openalex.org/W4234874385","https://openalex.org/W2533125852","https://openalex.org/W2389542812","https://openalex.org/W2388464034","https://openalex.org/W2381894592","https://openalex.org/W2323648130","https://openalex.org/W2140460949","https://openalex.org/W2105580438","https://openalex.org/W2092530219","https://openalex.org/W2057435755"],"abstract_inverted_index":{"Recently,":[0],"the":[1,27,31,34,43,47,54,57,68,83,99,103,107,116,119,122,126,130,136,144,158,162,171,174,177,191,197,207,218,225,229,232,235,237,241,245,250,255,261,271],"number":[2],"of":[3,33,49,110,118,153,173,217,234,240,248],"targeted":[4,35,276],"attacks":[5],"to":[6,22,24,41,66,140,196,227,269],"specific":[7],"organizations,":[8],"such":[9,18,91],"as":[10,92],"companies":[11],"or":[12,29,142,151,187],"governments,":[13],"has":[14],"been":[15],"increasing.":[16],"Although":[17],"organizations":[19],"are":[20],"required":[21],"conduct":[23,72],"protect":[25],"against":[26,274],"attack":[28],"mitigate":[30],"effect":[32],"attack,":[36],"it":[37],"is":[38,133,138,194,215],"very":[39],"difficult":[40],"perform":[42,270],"proper":[44,69,163,272],"operation":[45,70,75,164,169,273],"without":[46],"assistance":[48],"a":[50,154,185,200,266,275],"support":[51],"system.":[52],"Therefore,":[53],"authors":[55],"developed":[56,238],"Live":[58],"and":[59,88,94,125,179,244],"Intelligent":[60],"Network":[61],"Forensic":[62],"Technologies":[63],"(LIFT)":[64],"system":[65,81,105,146,160,209,243,252,263],"guide":[67,186],"and/or":[71,165],"an":[73,111,167],"automatic":[74,168,188],"using":[76,115],"artificial":[77,219],"intelligence.":[78],"The":[79],"LIFT":[80,104,145,159,198,208,230,242,251,262],"collects":[82],"logs":[84,150],"from":[85,98],"servers,":[86],"PCs,":[87],"communication":[89],"equipment":[90],"routers":[93],"detects":[95],"abnormal":[96],"signs":[97,124],"collected":[100],"logs.":[101],"Next,":[102],"calculates":[106],"certainty":[108,131],"factor":[109,132],"event":[112,137,178],"occurrence":[113],"by":[114],"knowledge":[117,172,192],"relation":[120,175],"between":[121,176],"detected":[123],"estimated":[127],"event.":[128],"If":[129,190],"large":[134],"enough,":[135],"assumed":[139],"occur,":[141],"else":[143],"requires":[147],"collecting":[148],"additional":[149],"results":[152,247],"memory":[155],"dump.":[156],"Moreover,":[157],"guides":[161],"conducts":[166],"with":[170],"proposed":[180],"action,":[181],"which":[182,214],"would":[183],"be":[184,204,265],"operation.":[189],"described":[193],"given":[195],"system,":[199,231,236],"total":[201],"simulation":[202],"can":[203,264],"performed":[205],"in":[206],"based":[210],"on":[211],"rule-based":[212],"technology,":[213],"one":[216],"intelligence":[220],"technologies.":[221],"This":[222],"paper":[223],"describes":[224],"objective":[226],"develop":[228],"overview":[233],"prototype":[239],"experimental":[246,256],"applying":[249],"prototype.":[253],"From":[254],"results,":[257],"we":[258],"confirm":[259],"that":[260],"useful":[267],"tool":[268],"attack.":[277]},"abstract_inverted_index_v3":null,"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W2426902404","counts_by_year":[],"updated_date":"2025-01-26T14:26:47.263440","created_date":"2016-06-24"}